CVE-2014-5415: Beckhoff Embedded PC Images and TwinCAT Components Exposed Dangerous Method or Function
Beckhoff Embedded PC images before 2014-10-22 and Automation Device Specification (ADS) TwinCAT components might allow remote attackers to obtain access via the (1) Windows CE Remote Configuration Tool, (2) CE Remote Display service, or (3) TELNET service.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2014-5415?
CVE-2014-5415 has a critical severity rating as it allows remote attackers to gain unauthorized access.
How do I fix CVE-2014-5415?
To fix CVE-2014-5415, update the Beckhoff Embedded PC images and TwinCAT components to versions released after October 22, 2014.
What are the attack vectors for CVE-2014-5415?
CVE-2014-5415 can be exploited through the Windows CE Remote Configuration Tool, CE Remote Display service, and TELNET service.
Who is affected by CVE-2014-5415?
CVE-2014-5415 affects users of Beckhoff Embedded PC images prior to 2014-10-22 and those using affected TwinCAT components.
What types of devices are impacted by CVE-2014-5415?
Devices impacted by CVE-2014-5415 include Beckhoff Embedded PCs and systems utilizing TwinCAT automation software.